Description
An issue was discovered in the DBI module through 1.643 for Perl. DBD::File drivers can open files from folders other than those specifically passed via the f_dir attribute in the data source name (DSN). NOTE: this issue exists because of an incomplete fix for CVE-2014-10401.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3035-1 | libdbi-perl security update |
EUVD |
EUVD-2014-1173 | An issue was discovered in the DBI module through 1.643 for Perl. DBD::File drivers can open files from folders other than those specifically passed via the f_dir attribute in the data source name (DSN). NOTE: this issue exists because of an incomplete fix for CVE-2014-10401. |
Ubuntu USN |
USN-5030-1 | Perl DBI module vulnerabilities |
Ubuntu USN |
USN-5030-2 | Perl DBI module vulnerabilities |
References
History
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T14:10:54.834Z
Reserved: 2020-09-16T00:00:00.000Z
Link: CVE-2014-10402
No data.
Status : Modified
Published: 2020-09-16T16:15:14.607
Modified: 2024-11-21T02:03:32.950
Link: CVE-2014-10402
OpenCVE Enrichment
No data.
Debian DLA
EUVD
Ubuntu USN